Looking for more information on how to do PHP the right way? Check out PHP: The Right Way

Aaron Wormus' Weblog:
Dangers of SQLite Ignorance
Sep 23, 2004 @ 12:29:07

Aaron Wormus has a new posting on his weblog pertaining to the Dangers of SQLite Ignorance.

As discouraged as using register_globals is, most people who write about PHP will never admit that using register_globals is in itself is a security risk. Sloppy coding, coupled with register_globals being turned on can create security problems. Because of this, register_globals was turned off by default. A wise decision.

SQLite could very easily fall into the same category as register_globals.

He voices concerns about programmer's use of the SQLite functionality and how they don't seem to care about securing their database information. Even with this long discussion about securing your database, most people still aren't taking on the responsibility of securing their data against would-be attacks (and Google searches).

UPDATE: A reaction to the above entry on Aaron's weblog has been made by Filip de Waard over on his weblog, and from the looks of things, I'm not sure he agrees...

tagged:

Link:


Trending Topics: